StackRadar

portfolio-tracker Helm chart

kubernetes-homelab-helm-chartsVerified publisher

Scored 14 Sept 2026

Deploys the self-hosted Portfolio Tracker with PostgreSQL

Latest 0.1.0 30 days agoapp version 0.1.0 0Artifact Hub

portfolio-tracker 0.1.0 deploys 3 container images: library/busybox, ghcr.io/harish2k01/portfolio-tracker and library/postgres. Across them, 157 findings0 critical, 0 high. The highest contribution is GHSA-p293-qw3h-jr36 in next 16.2.7, fixed in 16.3.3.

Radar Score

1,4980016141

157 findings over 3 of 3 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
library/busybox1.3600000
ghcr.io/harish2k01/portfolio-tracker0.1.00012851,005
library/postgres16-alpine00456493

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

135 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-vxpw-j846-p89qundici@6.25.06.27.0
LowALPINE-CVE-2026-14456openssl@3.5.7-r03.5.8-r0
LowGHSA-rgw5-rvv9-x895brace-expansion@5.0.55.0.9
LowALPINE-CVE-2026-63072openssl@3.5.7-r03.5.8-r0
LowGHSA-ggr8-5vv4-36mxdeepmerge-ts@7.1.58.0.0
LowGHSA-6g55-p6wh-862qpostcss@8.4.318.5.12
LowGHSA-w5vr-8v7q-w6rvbaseline-browser-mapping@2.10.332.11.0
LowGHSA-23hp-3jrh-7fpwtar@7.5.137.5.19
LowALPINE-CVE-2026-54874openssl@3.5.7-r03.5.8-r0
LowALPINE-CVE-2026-63075openssl@3.5.7-r03.5.8-r0
LowGHSA-mh99-v99m-4gvgbrace-expansion@5.0.55.0.8
LowGHSA-xmf8-cvqr-rfgjnext-auth@4.24.144.24.15
LowGHSA-v2hh-gcrm-f6hxfast-uri@3.1.23.1.4
LowGHSA-8x88-c5mf-7j5wtar@7.5.137.5.18
LowGHSA-q8wf-6r8g-63chnext@16.2.716.2.11
LowGHSA-mwp4-54f8-5fhrip-address@10.1.010.3.1
LowALPINE-CVE-2026-75803openssl@3.5.7-r03.5.8-r0
LowGHSA-4c8g-83qw-93j6fast-uri@3.1.23.1.3
LowGHSA-r292-9mhp-454mtar@7.5.137.5.21
LowGHSA-r28c-9q8g-f849postcss@8.4.318.5.18
LowGHSA-w5hq-g745-h8pquuid@8.3.211.1.1
LowGHSA-w4pp-8pjf-rmxwpacote@21.5.021.5.1
LowGO-2026-4341stdlib@go1.24.61.24.12
LowGHSA-4c39-4ccg-62r3next@16.2.716.2.11
LowGHSA-955p-x3mx-jcvpnext@16.2.716.2.11
LowGHSA-88fw-hqm2-52qchono@4.12.234.12.25
LowGHSA-fxqj-rqcc-2cmppostcss@8.4.318.5.23
LowALPINE-CVE-2026-76642util-linux@2.42.1-r02.42.3-r0
LowALPINE-CVE-2026-63074openssl@3.5.7-r03.5.8-r0
LowGHSA-5qjj-4xww-7phcvalibot@1.2.01.4.2
LowGHSA-jqff-g426-hqxpfast-uri@3.1.23.1.6
LowGHSA-w8wr-v893-vjvptar@7.5.137.5.18
LowGHSA-7p8r-x3mc-p8w7fast-uri@3.1.23.1.5
LowGHSA-f65p-4m7j-42xcfast-uri@3.1.23.1.6
LowGHSA-fph4-wmhf-6fwffast-uri@3.1.23.1.6
LowGHSA-p6gq-j5cr-w38fnodemailer@7.0.139.0.1
LowGHSA-gqvv-2mrq-wpjvhono@4.12.234.13.5
LowGHSA-wwfh-h76j-fc44hono@4.12.234.12.25
LowGHSA-4633-3j49-mh5qnext@16.2.716.2.11
LowGHSA-vvjj-xcjg-gr5gnodemailer@7.0.138.0.5
LowGHSA-2xp9-vwfh-vxw4next@16.2.716.3.3
LowGHSA-jxxr-4gwj-5jf2brace-expansion@5.0.55.0.6
LowGHSA-hvrm-45r6-mjfjhono@4.12.234.12.27
LowGHSA-52v5-jr5w-gjxrsigstore@4.1.04.1.1
LowGHSA-gvwx-54wh-qm9jtar@7.5.137.5.17
LowGHSA-w62v-xxxg-mg59hono@4.12.234.12.27
LowGHSA-8j4g-w8fx-2239hono@4.12.234.12.34
LowGHSA-68g3-v927-f742next@16.2.716.2.11
LowGHSA-crvj-82cr-hjcxhono@4.12.234.13.5
LowGHSA-rgj7-g3m4-5g8csharp@0.34.50.35.4

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.0latest30 days ago0.1.000161411,498

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/kubernetes-homelab-helm-charts/portfolio-tracker.svg)](https://charts.stackradar.io/charts/kubernetes-homelab-helm-charts/portfolio-tracker)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.